Openark's vulnerability footprint centers on its Orchestrator database orchestration and automation tool, a specialized component used for MySQL and related database infrastructure management. The observed exposure reflects application-layer input-handling issues, principally cross-site scripting weaknesses in web interfaces, which are typical of tools that expose administrative dashboards. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openark over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-27940MEDIUM resources/public/js/orchestrator.js in openark orchestrator before 3.2.4 allows XSS via the orchestrator-msg parameter. | Mar 3, 2021 | 6.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openark.
Media articles that mention a CVE ID that affects a product developed by Openark — matched by CVE ID, not by vendor name.